Microsoft

Visual Studio Code

77 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 0.59%
  • Veröffentlicht 11.08.2026 17:05:32
  • Zuletzt bearbeitet 14.08.2026 13:32:52

Improper control of generation of code ('code injection') in Visual Studio Code allows an unauthorized attacker to execute code over a network.

Medienbericht
  • EPSS 0.47%
  • Veröffentlicht 11.08.2026 17:05:32
  • Zuletzt bearbeitet 14.08.2026 12:37:53

Improper neutralization of special elements used in an os command ('os command injection') in GitHub Copilot and Visual Studio Code allows an unauthorized attacker to elevate privileges locally.

Medienbericht
  • EPSS 0.4%
  • Veröffentlicht 11.08.2026 17:05:18
  • Zuletzt bearbeitet 14.08.2026 12:50:36

Not failing securely ('failing open') in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

Medienbericht
  • EPSS 0.46%
  • Veröffentlicht 11.08.2026 17:05:17
  • Zuletzt bearbeitet 14.08.2026 13:21:33

Improper neutralization of special elements used in an os command ('os command injection') in Visual Studio Code allows an unauthorized attacker to execute code over a network.

Medienbericht
  • EPSS 0.33%
  • Veröffentlicht 11.08.2026 17:05:17
  • Zuletzt bearbeitet 14.08.2026 13:18:45

Incorrect authorization in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.

Medienbericht
  • EPSS 0.87%
  • Veröffentlicht 11.08.2026 17:03:41
  • Zuletzt bearbeitet 17.08.2026 11:31:49

Improper neutralization of special elements used in a command ('command injection') in Visual Studio Code allows an unauthorized attacker to disclose information over a network.

Medienbericht
  • EPSS 0.69%
  • Veröffentlicht 11.08.2026 17:03:40
  • Zuletzt bearbeitet 17.08.2026 12:26:32

Missing authorization in Visual Studio Code allows an unauthorized attacker to execute code over a network.

Medienbericht
  • EPSS 0.33%
  • Veröffentlicht 11.08.2026 17:03:24
  • Zuletzt bearbeitet 17.08.2026 12:48:00

Authorization bypass through user-controlled key in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.

  • EPSS 0.77%
  • Veröffentlicht 14.07.2026 17:09:38
  • Zuletzt bearbeitet 16.07.2026 15:34:36

Inclusion of functionality from untrusted control sphere in Visual Studio Code allows an unauthorized attacker to bypass a security feature over a network.

  • EPSS 0.44%
  • Veröffentlicht 14.07.2026 17:09:37
  • Zuletzt bearbeitet 16.07.2026 15:42:04

Improper neutralization of input during web page generation ('cross-site scripting') in Visual Studio Code allows an unauthorized attacker to bypass a security feature locally.